Yesterday as I was online, a bunch of those online game ads and pop ups started popping up in my screen and a bunch of random things started downloading automatically.
I ran malware bytes normally and it detected 253 viruses, most of them trojans and im guessing spyware. It quarantined them and I deleted them. After that, I manually restarted the laptop because firefox kept opening like 50 windows at the same time and it wouldn't stop (malware bytes didn't ask me to restart btw) and that is when everything started going wrong.
After around 15 minutes, my laptop wouldn't restart and would just keep showing me the "shutting down" screen. I waited another 5 minutes and nothing happened so I had to force shut down. After waiting another 10 minutes I tried to turn the computer back on but it ALWAYS get stuck in the starting screen. I turned it off again and went into safe mode.
In safe mode I tried to run malwarebytes but it wouldn't open the file, it would just show me a message saying there was an error with mbam.exe. I changed the name, the extension and did everything i could to try to run it but nothing worked. I tried to open AVG and windows defender and none of them work, it says both programs ran into an error and can't start.
I then downloaded RKill into a usb drive (i can't use the internet in my infected latopt and safe mode with enabled networking doesn't work) and tried running it but it showed no malware to kill, no errors, nothing wrong (i don't have the logs) and thena message appeared saying I should be able to run malware programs now since nothing was found with RKill. I tried running malware bytes again and it said "This program can't be run in this computer, contact the developer."
I downloaded malware bytes into my usb and tried to install it in the infected laptop but it just gets stalled in the installation screen. I tried to restart the laptop in normal mode and it doesn't boot. It gets stuck in the back screen with the window. Then I booted it in safe mode again and got this message:
"LogonUI.exe - Application Error.
The instruction at 0xefdbb189 referenced memory at 0x00000008. The memory could not be written.
Click on OK to terminate the program.
Click on CANCEL to debug the program"
I have basically run out of ideas and I'm very desperate.... someone please help me, I don't know what to do and this laptop isn't mine.....
UPDATE: RKill Log attached
Rkill 2.9.1 by Lawrence Abrams (Grinler)
Copyright 2008-2017 BleepingComputer.com
More Information about Rkill can be found at this link:
Program started at: 11/11/2017 07:11:47 PM in x64 mode. (Safe Mode)
Windows Version: Windows 8.1 Pro
Checking for Windows services to stop:
* No malware services found to stop.
Checking for processes to terminate:
* C:\Users\Yuki Nagato\Desktop\mbar-220.127.116.111.exe (PID: 352) [UP-HEUR]
* C:\Users\Yuki Nagato\Desktop\mbar-18.104.22.1681.exe (PID: 468) [UP-HEUR]
2 proccesses terminated!
Checking Registry for malware related settings:
* No issues found in the Registry.
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
Performing miscellaneous checks:
* Windows Defender Disabled
"DisableAntiSpyware" = dword:00000001
Searching for Missing Digital Signatures:
* No issues found.
Checking HOSTS File:
* HOSTS file entries found:
20 out of 377 HOSTS entries shown.
Please review HOSTS file for further entries.
Program finished at: 11/11/2017 07:14:55 PM
Execution time: 0 hours(s), 3 minute(s), and 8 seconds(s)
Edited by Oh My!, 13 November 2017 - 07:02 PM.